ncurses 6.0+20170827-1 source package in Debian

Changelog

ncurses (6.0+20170827-1) unstable; urgency=medium

  * New upstream patchlevel.
    - Add/improve checks in tic's parser to address invalid input
      (Closes: #873723).
      + Add a check in comp_scan.c to handle the special case where a
        nontext file ending with a NUL rather than newline is given to
        tic as input (CVE-2017-13728).
      + Allow for cancelled capabilities in _nc_save_str (CVE-2017-13729).
      + Add validity checks for "use=" target in _nc_parse_entry
        (CVE-2017-13730).
      + Check for invalid strings in postprocess_termcap (CVE-2017-13731).
      + Reset secondary pointers on EOF in next_char() (CVE-2017-13732).
      + Guard _nc_safe_strcpy() and _nc_safe_strcat() against calls using
        cancelled strings (CVE-2017-13734).
    - Add usage message to clear command (Closes: #371855).
  * Configure the test programs with --datadir=/usr/share/ncurses-examples.
  * Look for tarballs on ftp.invisible-island.net in the watch files.

 -- Sven Joachim <email address hidden>  Thu, 31 Aug 2017 21:01:20 +0200

Upload details

Uploaded by:
Craig Small
Uploaded to:
Sid
Original maintainer:
Craig Small
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
ncurses_6.0+20170827-1.dsc 3.9 KiB f7476efad8861e2ee8ea105461d415f9362cb4f3aec8657f47defef0bb229f5c
ncurses_6.0+20170827.orig.tar.gz 3.2 MiB 148193cef8ad2cf3cb1fc207c1b16ea1ace3b6b19b9d975e7d1841acf53c37ea
ncurses_6.0+20170827.orig.tar.gz.asc 267 bytes f6cc0117fb10834c557bc2d1ed336bee1898961ddb1e965325d5a7d3687de7e7
ncurses_6.0+20170827-1.debian.tar.xz 52.2 KiB 66d89732a20568a74ef193d2d2a9dc5aa81c3b39150a4ce80bf659f4bef1e3ee

No changes file available.

Binary packages built by this source